CVE-2021-47795
GeoVision Geowebserver 5.3.3 - Local FIle Inclusion
Record summary
CVE-2021-47795 has a selected CVSS score of 8.7 (high); EIP currently links 1 catalogued exploit and 1 Nuclei template.
Description
GeoVision GeoWebServer 5.3.3 contains multiple vulnerabilities including local file inclusion, cross-site scripting, and remote code execution through improper input sanitization. Attackers can exploit the WebStrings.srf endpoint by manipulating path traversal and injection parameters to access system files and execute malicious scripts.
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · Jan 25, 2026 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
Available material
CISA SSVC decision
CISA Coordinator · SSVC 2.0.3 · Evaluated Jan 16, 2026 · Source: CVE List
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
GeoWebServerBrowse GeoVision / GeoWebServer | VulnCheck | Version data not supplied | |
GeoVision GeowebserverBrowse Geovision / GeoVision Geowebserver | CVE List | <= 5.3.3 | affected |
Proofs of concept
1Catalogued exploits
ExploitDBGeoVision Geowebserver 5.3.3 - Local FIle InclusionExploitDB exploitby Ken PyleNot analyzed1 file
Nuclei templates
1ProjectDiscoveryHIGHGeoVision GeoWebServer <= 5.3.3 - Local File Inclusion / Cross-Site ScriptingCVSS 6.2
GeoVision GeoWebServer 5.3.3 and prior is vulnerable to local file inclusion and cross-site scripting due to improper sanitization of user-supplied input in the WebStrings.srf endpoint. An unauthenticated attacker can read arbitrary files from the server or inject malicious scripts.
Impact
Unauthenticated attackers can read arbitrary files from the server via path traversal, or execute arbitrary JavaScript in the victim's browser via reflected XSS.
Remediation
Contact GeoVision support for a patched firmware version that addresses the input sanitization issues.
Source: ProjectDiscovery